Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 83% confidence
- Finding
- The description presents the skill as an intake-first character skill generator, but the body also authorizes persistent memory handling, evidence indexing, style extraction, versioning, and optional export behaviors that materially expand its data processing footprint. This mismatch is dangerous because users or reviewers may grant or invoke the skill expecting limited content-generation behavior while it can also collect, persist, route, and summarize user-specific memory, increasing privacy and data-governance risk.
